Validation of write data subsequent to destaging to auxiliary storage for completion of peer to peer remote copy

ABSTRACT

A primary storage controller receives a write command from a host, to write data that is to be controlled by the primary storage controller. The data is written to local storage of the primary storage controller and subsequently the data is destaged from the local storage of the primary storage controller to store the data in an auxiliary storage of the primary storage controller. The data is transmitted to a secondary storage controller for writing the data to local storage of the secondary storage controller and for subsequently destaging the data from the local storage of the secondary storage controller to store the data in an auxiliary storage of the secondary storage controller. The data stored in the auxiliary storage of the primary storage controller is compared to the data stored in the auxiliary storage of the secondary storage controller to determine whether the write command is successfully executed.

BACKGROUND 1. Field

Embodiments relate to the validation of write data subsequent to the destaging of the write data to auxiliary storage for completion of peer to peer remote copy.

2. Background

A storage controller may control access to storage for one or more host computational devices that may be coupled to the storage controller over a network. A storage management application that executes in the storage controller may manage a plurality of storage devices, such as disk drives, tape drives, flash drives, direct access storage devices (DASD), etc., that are coupled to the storage controller. A host may send Input/Output (I/O) commands to the storage controller and the storage controller may execute the I/O commands to read data from the storage devices or write data to the storage devices.

In certain storage systems, a primary storage controller that provides I/O access to storage volumes may be coupled to a secondary storage controller. The secondary storage controller may store backup copies of storage volumes of the primary storage controller. The storage volumes of the primary storage controller are referred to as primary storage volumes and the backup copies of storage volumes are referred to as secondary storage volumes.

The secondary storage volumes may be generated either synchronously or asynchronously by copying primary storage volumes from the primary storage controller to the secondary storage controller, and this process may be referred to as a peer to peer remote copy (PPRC). Synchronous PPRC causes each write to a primary storage volume to be performed to the secondary storage volume as well, and the I/O (i.e., the write) is considered to be complete when writes to both the primary storage volume and the secondary storage volume have completed. In asynchronous PPRC, an I/O is considered to be complete when updates have been made to the primary storage volume, and the primary storage volume is copied to the secondary storage volume when time permits.

SUMMARY OF THE PREFERRED EMBODIMENTS

Provided are a method, system, and computer program product in which a primary storage controller receives a write command from a host, to write data that is to be controlled by the primary storage controller. The data is written to a local storage of the primary storage controller and subsequently the data is destaged from the local storage of the primary storage controller to store the data in an auxiliary storage of the primary storage controller. The data is transmitted to a secondary storage controller for writing the data to a local storage of the secondary storage controller and for subsequently destaging the data from the local storage of the secondary storage controller to store the data in an auxiliary storage of the secondary storage controller. The data stored in the auxiliary storage of the primary storage controller is compared to the data stored in the auxiliary storage of the secondary storage controller to determine whether the write command is successfully executed.

In additional embodiments, in response to determining that the data stored in the auxiliary storage of the primary storage controller is identical to the data stored in the auxiliary storage of the secondary storage controller, an indication is sent to the host that the write command is successfully executed.

In further embodiments, in response to determining that the data stored in the auxiliary storage of the primary storage controller is not identical to the data stored in the auxiliary storage of the secondary storage controller, performing at least one of the following: retrying execution of the write command; and sending an indication to the host that the write command is not successfully executed.

In certain embodiments, the write command is for writing the data to a primary storage volume of the primary storage controller that is to be maintained in a secure peer to peer remote copy relationship with a secondary storage volume of the secondary storage controller, wherein to maintain the secure peer to peer remote copy relationship the primary storage volume and the secondary storage volume are both destaged to auxiliary storages and validated as storing identical data.

In further embodiments, the comparing is performed, in response to an indication included in the write command to perform the comparing.

In yet further embodiments, in response to determining that there is no indication included in the write command to perform the comparing, the write command is denoted as being successfully executed to the host without waiting for the data to be destaged to the auxiliary storage of the primary storage controller and to the auxiliary storage of the secondary storage controller.

In additional embodiments, the comparing of the data stored in the auxiliary storage of the primary storage controller to the auxiliary storage of the secondary storage controller to determine whether the write command is successfully executed is performed at predetermined intervals of time or after every predetermined number of writes.

BRIEF DESCRIPTION OF THE DRAWINGS

Referring now to the drawings in which like reference numbers represent corresponding parts throughout:

FIG. 1 illustrates a block diagram of a computing environment comprising a primary storage controller coupled to a secondary storage controller, in accordance with certain embodiments;

FIG. 2 illustrates a flowchart that shows how a peer to peer remote copy (PPRC) of storage volumes is established in a normal mode in the computing environment, in accordance with certain embodiments;

FIG. 3 illustrates a flowchart that shows circumstances in which secondary storage volumes cannot be used instead of primary storage volumes in the normal mode of peer to peer remote copy operations, in accordance with certain embodiments;

FIG. 4 illustrates a modified I/O command for secure peer to peer remote copy operations, in accordance with certain embodiments;

FIG. 5 illustrates a first flowchart that shows validation of write data subsequent to the destaging of the write data to auxiliary storage for completion of peer to peer remote copy, in accordance with certain embodiments;

FIG. 6 illustrates a second flowchart that shows validation of write data subsequent to the destaging of the write data to auxiliary storage for completion of peer to peer remote copy, in accordance with certain embodiments;

FIG. 7 illustrates a block diagram that shows conditions under which the determining of whether the primary storage volume the secondary storage volume have identical data is performed while secure PPRC is in progress, in accordance with certain embodiments;

FIG. 8 illustrates a block diagram of a cloud computing environment, in accordance with certain embodiments;

FIG. 9 illustrates a block diagram of further details of the cloud computing environment of FIG. 8, in accordance with certain embodiments; and

FIG. 10 illustrates a block diagram of a computational system that shows certain elements that may be included in the storage controllers and/or the host(s), as described in FIGS. 1-9, in accordance with certain embodiments.

DETAILED DESCRIPTION

In the following description, reference is made to the accompanying drawings which form a part hereof and which illustrate several embodiments. It is understood that other embodiments may be utilized and structural and operational changes may be made.

Certain embodiments allow a write I/O operation on a primary storage volume of primary storage controller to complete after the write data corresponding to the write I/O has been copied to a secondary storage volume of a secondary storage controller and after the write data has been destaged to auxiliary storage of the primary storage controller and the secondary storage controller, after determining that the primary storage volume stored in the auxiliary storage of a primary storage controller is identical to the secondary storage volume stored in auxiliary storage of a secondary storage controller, where the primary storage volume and the secondary storage volume are in a peer to peer remote copy relationship. The comparison of the primary storage volume to the secondary storage volume is performed while the peer to peer remote copy operations are in progress.

In certain embodiments, the comparison of the primary storage volume to the secondary storage volume is performed, in response to an indication included in the I/O command (e.g., write command) to perform the comparing. In additional embodiments, the comparing of the data stored in the auxiliary storage of the primary storage controller to the data stored in the auxiliary storage of the secondary storage controller to determine whether the write command is successfully executed is performed at predetermined intervals of time or after every predetermined number of writes.

Exemplary Embodiments

FIG. 1 illustrates a block diagram of a computing environment 100 comprising a primary storage controller 102 that is coupled to a secondary storage controller 104. The primary storage controller 102 receives I/O requests from one or more hosts 106, and responds to the I/O requests by performing read or write operations with respect to primary storage volumes 108. The primary storage volumes 108 are logical storage volumes corresponding to physical storage volumes that store data in auxiliary storage 110 comprising a plurality of storage devices 112, 114, where the auxiliary storage 110 is coupled to the primary storage controller 102.

The I/O requests received by the primary storage controller 102 from the hosts 106 may comprise an I/O command for peer to peer remote copy in a secure mode or an I/O command for peer to peer remote copy in a normal mode (as shown via reference numeral 115).

The primary storage controller 102, the secondary storage controller 104, and the hosts 106 may comprise any suitable computational device including those presently known in the art, such as, a personal computer, a workstation, a server, a mainframe, a hand held computer, a palm top computer, a telephony device, a network appliance, a blade computer, a processing device, a controller, etc. The plurality of storage controllers 102, 104 may provide redundancy because if the primary storage controller 102 undergoes a failure from which recovery is not possible, the secondary storage controller 104 may be configured to communicate with the hosts 106 and the secondary storage controller 104 may perform the functions of the primary storage controller 102 that failed. Additionally, in case of loss of data in the primary storage volumes 108 of the primary storage controller 102, the lost data may be recovered from the secondary storage volumes 116 that are in a peer to peer remote copy relationship 118 with the primary storage volumes 108.

The primary storage controller 102, the secondary storage controller 104, and the hosts 106 may be elements in any suitable network, such as, a storage area network, a wide area network, the Internet, an intranet, etc. In certain embodiments, the primary storage controller 102, the secondary storage controller 104, and the hosts 106 may be elements in a cloud computing environment.

A storage management application 120 that executes in the primary storage controller 102 interfaces with a storage management application 122 that executes in the secondary storage controller 104 to establish the peer to peer remote copy relationship 118 between the primary storage volumes 108 and the secondary storage volumes 116. The storage management application 120 may also perform staging of data (shown via reference numeral 124) from the auxiliary storage 110 of the primary storage controller 102 to the local storage 126 of the primary storage controller 102. Similarly, the storage management application 122 may perform staging of data (shown via reference numeral 128) from the auxiliary storage 132 of the secondary storage controller 104 to the local storage 130 of the secondary storage controller 104, where the auxiliary storage 132 of the secondary storage controller 104 is comprised of a plurality of storage devices 134, 136. The staging of data may comprise movement of data.

The storage management application 120 may also perform destaging of data (shown via reference numeral 124) from the local storage 126 of the primary storage controller 102 to the auxiliary storage 110 of the primary storage controller 102.

Similarly, the storage management application 122 may perform destaging of data (shown via reference numeral 128) from the local storage 130 of the secondary storage controller 104 to the auxiliary storage 132 of the secondary storage controller 104. The destaging of data may comprise movement of data.

The local storage 126, 130 may be comprised of a volatile and/or a non-volatile storage. For example, in certain embodiments the local storage 126, 130 may be comprised of dynamic random access memory (DRAM) and/or solid state memory. The auxiliary storage 110, 132 have a much larger amount of storage capacity in comparison to the local storage 126, 130, and the auxiliary storage 110, 132 may be comprised of hard disks or other storage devices. When peer to peer remote copy operations are performed in a normal mode then a host application that executes in the host 106 may be made aware that an I/O operation is complete, once data has successfully been written to the local storage 126 even though it has not been destaged to the auxiliary storage 110. At an opportune time, data may be destaged from the local storage 126 to the auxiliary storage 110, to free up space in the local storage 126. Typically, the local storage 126 is coupled via a bus to the processor of the primary storage controller 102 and is accessed much faster in comparison to the auxiliary storage 110 that may be external to an enclosure of the primary storage controller 102, and the local storage 130 of the secondary storage controller 104 is designed in a similar manner.

The primary storage controller 102 also includes a secure peer to peer remote copy application 138, where in certain embodiments the secure peer to peer remote copy application 138 allows a write I/O operation from a host 106 to a primary storage volume 108 of the primary storage controller 108 to complete after the write data corresponding to the write I/O has been copied to a secondary storage volume 116 of the secondary storage controller 104 and after the write data has been destaged to auxiliary storage 110 of the primary storage controller 108 and auxiliary storage 132 of the secondary storage controller 104, after determining that the primary storage volume 108 contents stored in the auxiliary storage 110 of the primary storage controller 102 is identical to the secondary storage volume 116 contents stored in the auxiliary storage 122 of the secondary storage controller 104, where the primary storage volume 108 and the secondary storage volume 116 are in a secure peer to peer remote copy relationship 118. The comparison of the primary storage volume to the secondary storage volume is performed while the peer to peer remote copy operations are in progress in a secure mode.

In certain embodiments, the secure peer to peer remote copy application 138 and the storage management applications 120, 122 may be implemented in software, firmware, hardware or any combination thereof.

FIG. 2 illustrates a flowchart 200 that shows how a peer to peer remote copy (PPRC) of storage volumes is established in a normal mode in the computing environment 100, in accordance with certain embodiments.

Control starts at block 202 in which primary storage volumes 108 are maintained in a normal mode PPRC relationship 118 to secondary storage volumes 116. A write operation for writing to a primary storage volume 108 is received (at block 204) at the primary storage controller 102 from a host 106. The primary storage controller 102 writes (at block 206) the data corresponding to the write operation in the local storage 126 of the primary storage controller 102. Then if the normal mode PPRC relationship is a synchronous PPRC relationship (reference numeral 208) control proceeds to block 212 in which the data is copied from the local storage 126 of the primary storage controller 102 to the local storage 130 of the secondary storage controller 104, and the primary storage controller 102 then indicates (at block 214) to the host 106 that the write operation is complete.

From block 206 control proceeds to block 216 if the normal mode PPRC relationship 118 is an asynchronous PPRC relationship 210. At block 216, the primary storage controller 102 indicates to the host 106 that the write operation is complete, and the data is copied (at block 218) from the local storage 126 of the primary storage controller 102 to the local storage 130 of the secondary storage controller 104.

From blocks 214 and 218 control proceeds to blocks 220 and 222. In block 220, data is destaged from the local storage 126 of the primary storage controller 102 to the auxiliary storage 110 of the primary storage controller 102, and in block 222 data is destaged from the local storage 130 of the secondary storage controller 104 to the auxiliary storage 132 of the secondary storage controller 104.

Therefore, FIG. 2 illustrates certain embodiments in which in normal mode PPRC, an I/O operation may be indicated to the host 106 as being complete, even though the auxiliary storage has not been updated (via destaging from local storage) with the write corresponding to the I/O operation.

FIG. 3 illustrates a flowchart 300 that shows circumstances in which secondary storage volumes 116 cannot be used instead of primary storage volumes 108 in the normal mode of peer to peer remote copy operations, in accordance with certain embodiments.

Control starts in parallel in block 302 and block 304, where in block 302 a determination is made that there is an error in a secondary storage controller 104 (e.g., secondary storage controller 104 is not operating properly), and in block 304 a detection is made of an error in the auxiliary storage 132 of the secondary storage controller 104.

From blocks 302, 304 control proceeds to block 306 in which it is determined that erroneous data for secondary storage volume 116 is stored in the auxiliary storage 132 of the secondary storage controller 104. Control proceeds in parallel to blocks 308 and 310. In block 308 a failover of the primary storage controller 102 to the secondary storage controller 104 occurs. In block 310, the primary storage controller 102 requests the secondary storage controller 104 for data from the secondary storage volume 116, in response to loss of data in the primary storage volume 108.

Control proceeds from blocks 308 and 310 to block 312, in which it is determined that data from the secondary storage volume 116 cannot be used to replace data stored in the primary storage volume 108. Therefore, when a failover needs to be done or when there is a loss of data in the primary storage controller 102, then at this critical stage the data in the secondary storage volume 116 cannot be used to replace the data stored in the primary storage volume 108. In certain embodiments, by providing a secure mode of peer to peer remote copy operations, mechanisms are provided to detect an error in a PPRC relationship between the primary storage volume 108 and the secondary storage volume 116 well in advance of the time at which data in secondary storage volume 116 is needed to replace the data stored in the primary storage volume 108. For write data that is designated at critical data (e.g., name and telephone number of customers) by a user, the secure mode of PPRC is performed, rather than the normal mode of PPRC.

FIG. 4 illustrates a modified I/O command 400 (a write command in this example) for secure peer to peer remote copy operations, in accordance with certain embodiments. The modified I/O command 400 has one or more fields allocated for write operation indications that include storage volumes and/or addresses to which data is to be written (shown via reference numeral 402). One or more fields of the modified I/O command 400 includes the data to be written (shown via reference numeral 404). In contrast to normal I/O commands, the modified I/O command 400 has a field that indicates whether a secure peer to peer remote copy is to be performed (shown via reference numeral 406). The secure peer to peer remote copy indication 406 may be provided via a number of different mechanisms, including by indicating that the write data is critical data or by providing indications to compare data stored in auxiliary storage 110 of the primary storage controller 102 and auxiliary storage 132 of the secondary storage controller 104, prior to indicating to the host 106 than the modified I/O command 400 has been successfully completed.

FIG. 5 illustrates a first flowchart 500 that shows validation of write data subsequent to the destaging of the write data to auxiliary storage for completion of peer to peer remote copy, in accordance with certain embodiments. In FIG. 5 the operations of the primary storage controller (reference numeral 504) are shown to the left of the dashed line 502, and the operations of the secondary storage controller (reference numeral 506) are shown to the right of the dashed line 502.

Control starts at block 508 in which a primary storage volume 108 is maintained in a secure PPRC relationship 118 to a secondary storage volume 116. Control proceeds to block 510 in which the primary storage controller 102 receives a write command to write data from a host 106. The primary storage controller 102 writes the data to local storage 126 of the primary storage controller 102 and transmits (at block 512) the data to the secondary storage controller 104.

From block 512 control proceeds to block 514 in which the primary storage controller 102 destages the data from the local storage 126 of the primary storage controller 102 to the auxiliary storage 110 of the primary storage controller 102. Subsequently, at block 516, the primary storage controller 102 stages the data from the auxiliary storage 110 of the primary storage controller 102 to the local storage 126 of the primary storage controller 102.

From block 512 control also proceeds to block 520 in which the secondary storage controller 104 writes the data to the local storage 130 of the secondary storage controller 104. The secondary storage controller 104 destages (at block 521) the data from the local storage 130 of the secondary storage controller 104 to the auxiliary storage 132 of the secondary storage controller 104, The secondary storage controller 104 then stages (at block 522) the data from the auxiliary storage 132 of the secondary storage controller 104 to the local storage 130 of the secondary storage controller 104 and transmits the data to the primary storage controller 102.

From block 516 and 522 control proceeds to block 518 in which the primary storage controller 102 determines if the staged data to the local storage 126 of the primary storage controller 102 is identical to the data received from the secondary storage controller 104 (i.e., the primary storage controller 102 compares data written in auxiliary storage 110 of primary storage controller 102 and data written in auxiliary storage 132 of secondary storage controller 104).

If at block 518, the primary storage controller 102 determines that the data written in auxiliary storage 110 of the primary storage controller 102 is different from the data written to the auxiliary storage 132 of the secondary storage controller 104 (“No” branch 524) then control proceeds to block 526 in which the secure PPRC relationship between the primary storage volume 108 to which the data is written and the secondary storage volume 116 to which the data is copied is suspended until the error is resolved. The error may have been caused by a variety of reasons including those shown earlier in FIG. 2.

If at block 518, the primary storage controller 102 determines that the data written in the auxiliary storage 110 of the primary storage controller 102 is identical to the data written to the auxiliary storage 132 of the secondary storage controller 104 (“Yes” branch 528) then control proceeds to block 530 in which the primary storage controller 102 sends an indication to the host 106 that the write command has been successfully performed, and the secure PPRC relationship 118 is successfully maintained.

FIG. 6 illustrates a second flowchart 600 that shows validation of write data subsequent to the destaging of the write data to auxiliary storage for completion of peer to peer remote copy, in accordance with certain embodiments.

A primary storage controller 102 receives (at block 602) a write command from a host 106, to write data that is to be controlled by the primary storage controller 102. The data is written to a local storage 126 of the primary storage controller 102 and subsequently the data is destaged from the local storage 126 of the primary storage controller 102 to store the data in an auxiliary storage 110 of the primary storage controller 102 (at block 604). The data is transmitted (at block 606) to a secondary storage controller 104 for writing the data to a local storage 130 of the secondary storage controller 104 and for subsequently destaging the data from the local storage 130 of the secondary storage controller 104 to store the data in an auxiliary storage 132 of the secondary storage controller 104.

From block 606 control proceeds to block 608 in which the data stored in the auxiliary storage 110 of the primary storage controller 102 is compared to the data stored in the auxiliary storage 132 of the secondary storage controller 104 to determine whether the write command is successfully executed.

From block 608 control proceeds in parallel to block 610 and 612. In block 610, in response to determining that the data stored in the auxiliary storage 110 of the primary storage controller 102 is identical to the data stored in the auxiliary storage 132 of the secondary storage controller 104, an indication is sent to the host 106 that the write command is successfully executed. In block 612, in response to determining that the data stored in the auxiliary storage 110 of the primary storage controller 102 is not identical to the data stored in the auxiliary storage 132 of the secondary storage controller 104, the primary storage controller 102 performs at least one of the following: retrying execution of the write command; and sending an indication to the host 106 that the write command is not successfully executed.

FIG. 7 illustrates a block diagram 700 that shows conditions under which the determining of whether the primary storage volume 108 and the secondary storage volume 116 have identical data is performed while secure PPRC is in progress, in accordance with certain embodiments.

In certain embodiments, the comparing to determine whether the primary storage volume 108 and the secondary storage volume 116 have identical data is performed for critical data (shown via reference numeral 702), where the critical data (i.e., data which is more important than the rest of the data and should be protected more securely than the rest of the data) may be designated by a user. In certain embodiments, some users may request is that they want their important transactions to be guaranteed on both the primary storage controller 102 and the secondary storage controller 104, and in such embodiments the data read from auxiliary storage on both the primary storage controller 102 and the secondary storage controller 104 are verified to be identical before transactions are deemed to be complete. In certain embodiments, important transactions may be transactions over a predetermined monetary amount (e.g., $10,000).

In additional embodiments, the comparing of the data stored in the auxiliary storage 110 of the primary storage controller 102 to the auxiliary storage 132 of the secondary storage controller 104 to determine whether the write command is successfully executed is performed at predetermined intervals of time (shown at block 704) or after every predetermined number of writes (shown at block 706). For example, the determination of whether the write command is successfully executed may be performed every 12 hours or every N writes, where an exemplary value of N may be 1000.

Therefore, FIGS. 1-7 illustrate certain embodiments in which a secure peer to peer remote copy relationship 118 is maintained between primary storage volumes 108 of a primary storage controller 102 and secondary storage volumes 116 of a secondary storage controller 104.

Cloud Computing Environment

Cloud computing is a model for enabling convenient, on-demand network access to a shared pool of configurable computing resources (e.g., networks, servers, storage, applications, and services) that can be rapidly provisioned and released with minimal management effort or service provider interaction.

Referring now to FIG. 8, an illustrative cloud computing environment 50 is depicted. As shown, cloud computing environment 50 comprises one or more cloud computing nodes 10 with which local computing devices used by cloud consumers, such as, for example, personal digital assistant (PDA) or cellular telephone 54A, desktop computer 54B, laptop computer 54C, and/or automobile computer system 54N may communicate. Nodes 10 may communicate with one another. They may be grouped (not shown) physically or virtually, in one or more networks, such as Private, Community, Public, or Hybrid clouds as described hereinabove, or a combination thereof. This allows cloud computing environment 50 to offer infrastructure, platforms and/or software as services for which a cloud consumer does not need to maintain resources on a local computing device. It is understood that the types of computing devices 54A-N shown in FIG. 8 are intended to be illustrative only and that computing nodes 10 and cloud computing environment 50 can communicate with any type of computerized device over any type of network and/or network addressable connection (e.g., using a web browser).

Referring now to FIG. 9, a set of functional abstraction layers provided by cloud computing environment 50 (FIG. 8) is shown. It should be understood in advance that the components, layers, and functions shown in FIG. 9 are intended to be illustrative only and embodiments of the invention are not limited thereto.

Hardware and software layer 60 includes hardware and software components. Examples of hardware components include mainframes, in one example IBM zSeries* systems; RISC (Reduced Instruction Set Computer) architecture based servers, in one example IBM pSeries* systems; IBM xSeries* systems; IBM BladeCenter* systems; storage devices; networks and networking components. Examples of software components include network application server software, in one example IBM WebSphere* application server software; and database software, in one example IBM DB2* database software. * IBM, zSeries, pSeries, xSeries, BladeCenter, WebSphere, and DB2 are trademarks of International Business Machines Corporation registered in many jurisdictions worldwide.

Virtualization layer 62 provides an abstraction layer from which the following examples of virtual entities may be provided: virtual servers; virtual storage; virtual networks, including virtual private networks; virtual applications and operating systems; and virtual clients.

In one example, management layer 64 may provide the functions described below. Resource provisioning provides dynamic procurement of computing resources and other resources that are utilized to perform tasks within the cloud computing environment. Metering and Pricing provide cost tracking as resources are utilized within the cloud computing environment, and billing or invoicing for consumption of these resources. In one example, these resources may comprise application software licenses. Security provides identity verification for cloud consumers and tasks, as well as protection for data and other resources. User portal provides access to the cloud computing environment for consumers and system administrators. Service level management provides cloud computing resource allocation and management such that required service levels are met. Service Level Agreement (SLA) planning and fulfillment provide pre-arrangement for, and procurement of, cloud computing resources for which a future requirement is anticipated in accordance with an SLA.

Workloads layer 66 provides examples of functionality for which the cloud computing environment may be utilized. Examples of workloads and functions which may be provided from this layer include: mapping and navigation; software development and lifecycle management; virtual classroom education delivery; data analytics processing; transaction processing; and secure PPRC processing 68 as shown in FIGS. 1-8.

Additional Embodiment Details

The described operations may be implemented as a method, apparatus or computer program product using standard programming and/or engineering techniques to produce software, firmware, hardware, or any combination thereof. Accordingly, aspects of the embodiments may take the form of an entirely hardware embodiment, an entirely software embodiment (including firmware, resident software, micro-code, etc.) or an embodiment combining software and hardware aspects that may all generally be referred to herein as a “circuit,” “module” or “system.” Furthermore, aspects of the embodiments may take the form of a computer program product. The computer program product may include a computer readable storage medium (or media) having computer readable program instructions thereon for causing a processor to carry out aspects of the present embodiments.

The computer readable storage medium can be a tangible device that can retain and store instructions for use by an instruction execution device. The computer readable storage medium may be, for example, but is not limited to, an electronic storage device, a magnetic storage device, an optical storage device, an electromagnetic storage device, a semiconductor storage device, or any suitable combination of the foregoing. A non-exhaustive list of more specific examples of the computer readable storage medium includes the following: a portable computer diskette, a hard disk, a random access memory (RAM), a read-only memory (ROM), an erasable programmable read-only memory (EPROM or Flash memory), a static random access memory (SRAM), a portable compact disc read-only memory (CD-ROM), a digital versatile disk (DVD), a memory stick, a floppy disk, a mechanically encoded device such as punch-cards or raised structures in a groove having instructions recorded thereon, and any suitable combination of the foregoing. A computer readable storage medium, as used herein, is not to be construed as being transitory signals per se, such as radio waves or other freely propagating electromagnetic waves, electromagnetic waves propagating through a waveguide or other transmission media (e.g., light pulses passing through a fiber-optic cable), or electrical signals transmitted through a wire.

Computer readable program instructions described herein can be downloaded to respective computing/processing devices from a computer readable storage medium or to an external computer or external storage device via a network, for example, the Internet, a local area network, a wide area network and/or a wireless network. The network may comprise copper transmission cables, optical transmission fibers, wireless transmission, routers, firewalls, switches, gateway computers and/or edge servers. A network adapter card or network interface in each computing/processing device receives computer readable program instructions from the network and forwards the computer readable program instructions for storage in a computer readable storage medium within the respective computing/processing device.

Computer readable program instructions for carrying out operations of the present embodiments may be assembler instructions, instruction-set-architecture (ISA) instructions, machine instructions, machine dependent instructions, microcode, firmware instructions, state-setting data, or either source code or object code written in any combination of one or more programming languages, including an object oriented programming language such as Smalltalk, C++ or the like, and conventional procedural programming languages, such as the “C” programming language or similar programming languages. The computer readable program instructions may execute entirely on the user's computer, partly on the user's computer, as a stand-alone software package, partly on the user's computer and partly on a remote computer or entirely on the remote computer or server. In the latter scenario, the remote computer may be connected to the user's computer through any type of network, including a local area network (LAN) or a wide area network (WAN), or the connection may be made to an external computer (for example, through the Internet using an Internet Service Provider). In some embodiments, electronic circuitry including, for example, programmable logic circuitry, field-programmable gate arrays (FPGA), or programmable logic arrays (PLA) may execute the computer readable program instructions by utilizing state information of the computer readable program instructions to personalize the electronic circuitry, in order to perform aspects of the present embodiments.

Aspects of the present embodiments are described herein with reference to flowchart illustrations and/or block diagrams of methods, apparatus (systems), and computer program products according to embodiments of the invention. It will be understood that each block of the flowchart illustrations and/or block diagrams, and combinations of blocks in the flowchart illustrations and/or block diagrams, can be implemented by computer readable program instructions.

These computer readable program instructions may be provided to a processor of a general purpose computer, special purpose computer, or other programmable data processing apparatus to produce a machine, such that the instructions, which execute via the processor of the computer or other programmable data processing apparatus, create means for implementing the functions/acts specified in the flowchart and/or block diagram block or blocks. These computer readable program instructions may also be stored in a computer readable storage medium that can direct a computer, a programmable data processing apparatus, and/or other devices to function in a particular manner, such that the computer readable storage medium having instructions stored therein comprises an article of manufacture including instructions which implement aspects of the function/act specified in the flowchart and/or block diagram block or blocks.

The computer readable program instructions may also be loaded onto a computer, other programmable data processing apparatus, or other device to cause a series of operational steps to be performed on the computer, other programmable apparatus or other device to produce a computer implemented process, such that the instructions which execute on the computer, other programmable apparatus, or other device implement the functions/acts specified in the flowchart and/or block diagram block or blocks.

The flowchart and block diagrams in the figures illustrate the architecture, functionality, and operation of possible implementations of systems, methods, and computer program products according to various embodiments of the present invention. In this regard, each block in the flowchart or block diagrams may represent a module, segment, or portion of instructions, which comprises one or more executable instructions for implementing the specified logical function(s). In some alternative implementations, the functions noted in the block may occur out of the order noted in the figures. For example, two blocks shown in succession may, in fact, be executed substantially concurrently, or the blocks may sometimes be executed in the reverse order, depending upon the functionality involved. It will also be noted that each block of the block diagrams and/or flowchart illustration, and combinations of blocks in the block diagrams and/or flowchart illustration, can be implemented by special purpose hardware-based systems that perform the specified functions or acts or carry out combinations of special purpose hardware and computer instruction.

FIG. 10 illustrates a block diagram that shows certain elements that may be included in the primary storage controller 102, the secondary storage controller 104, the hosts 106, or other computational devices in accordance with certain embodiments. The system 1000 may include a circuitry 1002 that may in certain embodiments include at least a processor 1004. The system 1000 may also include a memory 1006 (e.g., a volatile memory device), and storage 1008. The storage 1008 may include a non-volatile memory device (e.g., EEPROM, ROM, PROM, flash, firmware, programmable logic, etc.), magnetic disk drive, optical disk drive, tape drive, etc. The storage 1008 may comprise an internal storage device, an attached storage device and/or a network accessible storage device. The system 1000 may include a program logic 1010 including code 1012 that may be loaded into the memory 1006 and executed by the processor 1004 or circuitry 1002. In certain embodiments, the program logic 1010 including code 1012 may be stored in the storage 1008. In certain other embodiments, the program logic 1010 may be implemented in the circuitry 1002. One or more of the components in the system 1000 may communicate via a bus or via other coupling or connection 1014. Therefore, while FIG. 10 shows the program logic 1010 separately from the other elements, the program logic 1010 may be implemented in the memory 1006 and/or the circuitry 1002.

Certain embodiments may be directed to a method for deploying computing instruction by a person or automated processing integrating computer-readable code into a computing system, wherein the code in combination with the computing system is enabled to perform the operations of the described embodiments.

The terms “an embodiment”, “embodiment”, “embodiments”, “the embodiment”, “the embodiments”, “one or more embodiments”, “some embodiments”, and “one embodiment” mean “one or more (but not all) embodiments of the present invention(s)” unless expressly specified otherwise.

The terms “including”, “comprising”, “having” and variations thereof mean “including but not limited to”, unless expressly specified otherwise.

The enumerated listing of items does not imply that any or all of the items are mutually exclusive, unless expressly specified otherwise.

The terms “a”, “an” and “the” mean “one or more”, unless expressly specified otherwise.

Devices that are in communication with each other need not be in continuous communication with each other, unless expressly specified otherwise. In addition, devices that are in communication with each other may communicate directly or indirectly through one or more intermediaries.

A description of an embodiment with several components in communication with each other does not imply that all such components are required. On the contrary a variety of optional components are described to illustrate the wide variety of possible embodiments of the present invention.

Further, although process steps, method steps, algorithms or the like may be described in a sequential order, such processes, methods and algorithms may be configured to work in alternate orders. In other words, any sequence or order of steps that may be described does not necessarily indicate a requirement that the steps be performed in that order. The steps of processes described herein may be performed in any order practical. Further, some steps may be performed simultaneously.

When a single device or article is described herein, it will be readily apparent that more than one device/article (whether or not they cooperate) may be used in place of a single device/article. Similarly, where more than one device or article is described herein (whether or not they cooperate), it will be readily apparent that a single device/article may be used in place of the more than one device or article or a different number of devices/articles may be used instead of the shown number of devices or programs. The functionality and/or the features of a device may be alternatively embodied by one or more other devices which are not explicitly described as having such functionality/features. Thus, other embodiments of the present invention need not include the device itself.

At least certain operations that may have been illustrated in the figures show certain events occurring in a certain order. In alternative embodiments, certain operations may be performed in a different order, modified or removed. Moreover, steps may be added to the above described logic and still conform to the described embodiments. Further, operations described herein may occur sequentially or certain operations may be processed in parallel. Yet further, operations may be performed by a single processing unit or by distributed processing units.

The foregoing description of various embodiments of the invention has been presented for the purposes of illustration and description. It is not intended to be exhaustive or to limit the invention to the precise form disclosed. Many modifications and variations are possible in light of the above teaching. It is intended that the scope of the invention be limited not by this detailed description, but rather by the claims appended hereto. The above specification, examples and data provide a complete description of the manufacture and use of the composition of the invention. Since many embodiments of the invention can be made without departing from the spirit and scope of the invention, the invention resides in the claims hereinafter appended. 

1. A method, comprising: receiving, by a primary storage controller, a transaction to perform a write command from a host, to write data that is to be controlled by the primary storage controller; in response to determining that a user has requested that the data to be written comprises critical data that is to be protected more securely than data that is not critical data and that the transaction is to be guaranteed on both the primary storage controller and a secondary storage controller, performing: writing the data to a local storage of the primary storage controller and subsequently destaging the data from the local storage of the primary storage controller to store the data in an auxiliary storage of the primary storage controller; transmitting the data to the secondary storage controller for writing the data to a local storage of the secondary storage controller and subsequently destaging the data from the local storage of the secondary storage controller to store the data in an auxiliary storage of the secondary storage controller; and comparing the data stored in the auxiliary storage of the primary storage controller to the data stored in the auxiliary storage of the secondary storage controller to determine whether the write command is successfully executed; and in response to determining that the user has not requested that the data to be written comprises critical data and that the transaction does not have to be guaranteed on both the primary storage controller and the secondary storage controller, performing a peer to peer remote copy of the data from the primary storage controller to the secondary storage controller, wherein in the peer to peer remote copy an indication is provided to the host that the write command is successfully executed without performing at least the comparing.
 2. The method of claim 25, wherein the performing further comprises: in response to determining that the data staged to the local storage of the primary storage controller is identical to the data received from the secondary storage controller, sending an indication to the host that the write command is successfully executed.
 3. The method of claim 2, wherein the performing further comprises: in response to determining that the data staged to the local storage of the primary storage controller is not identical to the data received from the secondary storage controller, retrying execution of the write command.
 4. (canceled)
 5. (canceled)
 6. (canceled)
 7. The method of claim 1, wherein the comparing of the data stored in the auxiliary storage of the primary storage controller to the auxiliary storage of the secondary storage controller to determine whether the write command is successfully executed is performed at predetermined intervals of time.
 8. A system, comprising: a memory; and a processor coupled to the memory, wherein the processor performs operations, the operations performed by the processor comprising: receiving, by a primary storage controller, a transaction to perform a write command from a host, to write data that is to be controlled by the primary storage controller; in response to determining that a user has requested that the data to be written comprises critical data that is to be protected more securely than data that is not critical data and that the transaction is to be guaranteed on both the primary storage controller and a secondary storage controller, performing: writing the data to a local storage of the primary storage controller and subsequently destaging the data from the local storage of the primary storage controller to store the data in an auxiliary storage of the primary storage controller; transmitting the data to the secondary storage controller for writing the data to a local storage of the secondary storage controller and subsequently destaging the data from the local storage of the secondary storage controller to store the data in an auxiliary storage of the secondary storage controller; and comparing the data stored in the auxiliary storage of the primary storage controller to the data stored in the auxiliary storage of the secondary storage controller to determine whether the write command is successfully executed; and in response to determining that the user has not requested that the data to be written comprises critical data and that the transaction does not have to be guaranteed on both the primary storage controller and the secondary storage controller, performing a peer to peer remote copy of the data from the primary storage controller to the secondary storage controller, wherein in the peer to peer remote copy an indication is provided to the host that the write command is successfully executed without performing at least the comparing.
 9. The system of claim 26, wherein the performing further comprises: in response to determining that the data staged to the local storage of the primary storage controller is identical to the data received from the secondary storage controller, sending an indication to the host that the write command is successfully executed.
 10. The system of claim 9, wherein the performing further comprises: in response to determining that the data staged to the local storage of the primary storage controller is not identical to the data received from the secondary storage controller, retrying execution of the write command.
 11. (canceled)
 12. (canceled)
 13. (canceled)
 14. The system of claim 8, wherein the comparing of the data stored in the auxiliary storage of the primary storage controller to the auxiliary storage of the secondary storage controller to determine whether the write command is successfully executed is performed at predetermined intervals of time.
 15. A computer program product, the computer program product comprising a computer readable storage medium having computer readable program code embodied therewith, the computer readable program code configured to perform operations, the operations comprising: receiving, by a primary storage controller, a transaction to perform a write command from a host, to write data that is to be controlled by the primary storage controller; in response to determining that a user has requested that the data to be written comprises critical data that is to be protected more securely than data that is not critical data and that the transaction is to be guaranteed on both the primary storage controller and a secondary storage controller, performing: writing the data to a local storage of the primary storage controller and subsequently destaging the data from the local storage of the primary storage controller to store the data in an auxiliary storage of the primary storage controller; transmitting the data to the secondary storage controller for writing the data to a local storage of the secondary storage controller and subsequently destaging the data from the local storage of the secondary storage controller to store the data in an auxiliary storage of the secondary storage controller; and comparing the data stored in the auxiliary storage of the primary storage controller to the data stored in the auxiliary storage of the secondary storage controller to determine whether the write command is successfully executed; and in response to determining that the user has not requested that the data to be written comprises critical data and that the transaction does not have to be guaranteed on both the primary storage controller and the secondary storage controller, performing a peer to peer remote copy of the data from the primary storage controller to the secondary storage controller, wherein in the peer to peer remote copy an indication is provided to the host that the write command is successfully executed without performing at least the comparing.
 16. The computer program product of claim 27, wherein the performing further comprises: in response to determining that the data staged to the local storage of the primary storage controller is identical to the data received from the secondary storage controller, sending an indication to the host that the write command is successfully executed.
 17. The computer program product of claim 16, wherein the performing further comprises: in response to determining that the data staged to the local storage of the primary storage controller is not identical to the data received from the secondary storage controller, retrying execution of the write command.
 18. (canceled)
 19. (canceled)
 20. (canceled)
 21. The computer program product of claim 15, wherein the comparing of the data staged to the local storage of the primary storage controller to the data received from the secondary storage controller is performed at predetermined intervals of time.
 22. The method of claim 1, wherein: the local storage of the primary storage controller is coupled via a bus of the primary storage controller to a processor of the primary storage controller, and the auxiliary storage of the primary storage controller is external to an enclosure of the primary storage controller; and the local storage of the secondary storage controller is coupled via a bus of the secondary storage controller to a processor of the secondary storage controller and the auxiliary storage of the secondary storage controller is external to an enclosure of the secondary storage controller.
 23. The system of claim 8, wherein: the local storage of the primary storage controller is coupled via a bus of the primary storage controller to a processor of the primary storage controller, and the auxiliary storage of the primary storage controller is external to an enclosure of the primary storage controller; and the local storage of the secondary storage controller is coupled via a bus of the secondary storage controller to a processor of the secondary storage controller and the auxiliary storage of the secondary storage controller is external to an enclosure of the secondary storage controller.
 24. The computer program product of claim 15, wherein: the local storage of the primary storage controller is coupled via a bus of the primary storage controller to a processor of the primary storage controller, and the auxiliary storage of the primary storage controller is external to an enclosure of the primary storage controller; and the local storage of the secondary storage controller is coupled via a bus of the secondary storage controller to a processor of the secondary storage controller and the auxiliary storage of the secondary storage controller is external to an enclosure of the secondary storage controller.
 25. The method of claim 1, wherein the performing further comprises: subsequent to the destaging of the data from the local storage of the primary storage controller to the auxiliary storage of the primary storage controller, staging the data from the auxiliary storage of the primary storage controller to the local storage of the primary storage controller; subsequent to the destaging of the data from the local storage of the secondary storage controller to the auxiliary storage of the secondary storage controller, staging the data from the auxiliary storage of the secondary storage controller to the local storage of the secondary storage controller, and then transmitting the data staged to the local storage of the secondary storage controller to the primary storage controller; and subsequent to the staging of the data to the local storage of the primary storage controller and the transmitting of the data staged to the local storage of the secondary storage controller to the primary storage controller performing the comparing.
 26. The system of claim 8, wherein the performing further comprises: subsequent to the destaging of the data from the local storage of the primary storage controller to the auxiliary storage of the primary storage controller, staging the data from the auxiliary storage of the primary storage controller to the local storage of the primary storage controller; subsequent to the destaging of the data from the local storage of the secondary storage controller to the auxiliary storage of the secondary storage controller, staging the data from the auxiliary storage of the secondary storage controller to the local storage of the secondary storage controller, and then transmitting the data staged to the local storage of the secondary storage controller to the primary storage controller; and subsequent to the staging of the data to the local storage of the primary storage controller and the transmitting of the data staged to the local storage of the secondary storage controller to the primary storage controller performing the comparing.
 27. The computer program product of claim 15, wherein the performing further comprises: subsequent to the destaging of the data from the local storage of the primary storage controller to the auxiliary storage of the primary storage controller, staging the data from the auxiliary storage of the primary storage controller to the local storage of the primary storage controller; subsequent to the destaging of the data from the local storage of the secondary storage controller to the auxiliary storage of the secondary storage controller, staging the data from the auxiliary storage of the secondary storage controller to the local storage of the secondary storage controller, and then transmitting the data staged to the local storage of the secondary storage controller to the primary storage controller; and subsequent to the staging of the data to the local storage of the primary storage controller and the transmitting of the data staged to the local storage of the secondary storage controller to the primary storage controller performing the comparing. 